Attackers Chain JFrog Artifactory Flaws to Gain Admin Control and Plant Backdoors
Attackers have chained two flaws in JFrog Artifactory, the repository that software build pipelines pull from, to take administrator control...
Category Added in a WPeMatico Campaign
Attackers have chained two flaws in JFrog Artifactory, the repository that software build pipelines pull from, to take administrator control...
A China-linked hacking group exploited a flaw in Sogou Input Method, one of the most widely used tools for typing...
Ravie LakshmananSep 11, 2026Vulnerability / Cyber Attack PaperCut on Thursday released a new security maintenance release that replaces all previously...
Ravie LakshmananSep 11, 2026Vulnerability / Malware Cisco has revealed that three distinct threat clusters linked to ransomware and state-sponsored attacks...
Ravie LakshmananSep 10, 2026Hacking News / Cybersecurity News A lot of this week’s security news has the same awkward answer...
Ravie LakshmananSep 10, 2026Mobile Security / Artificial Intelligence Bad actors are misusing Google Play's Early Access program to push deceptive...
Check Point has patched two critical vulnerabilities in the way its firewall and management products handle VPN certificates. The company...
A suspected Russian-speaking cyber actor has been attributed to the use of artificial intelligence (AI) to devise exploits targeting a...
The Gigabud banking trojan now installs a second Android app that creates a work profile on an infected phone and...
Ravie LakshmananSep 10, 2026Vulnerability / Network Security The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Wednesday added three flaws,...
Nearly one in ten of the internet-facing LiteLLM servers that Wiz Research scanned in February accepted sk-1234, the example admin key in LiteLLM's...
Anthropic on Wednesday disclosed a fourth incident in which its artificial intelligence (AI) model broke into real third-party systems, marking...
The U.S. Department of Justice (DoJ) on Wednesday announced coordinated actions aimed at an illicit online marketplace called Xinbi Guarantee...
Multiple espionage-motivated threat activity clusters have been found deploying a previously undocumented exploit kit called BlueMoon that chains together multiple...
Cybercriminals are hijacking artificial intelligence (AI) user accounts via information stealer logs to create "stolen keys" that grant illicit access...